=== WP Tweaks === Contributors: luizbills Tags: security, performance, tweaks, optimization, xmlrpc, emoji Donate link: https://www.luizpb.com/donate/ Requires at least: 4.0 Tested up to: 6.3 Requires PHP: 7.4 Stable tag: 2.2.0 License: GPLv3 License URI: http://www.gnu.org/licenses/gpl-3.0.html Several opinionated WordPress tweaks focused in security and performance. == Description == Several opinionated WordPress tweaks focused in security and performance. = FEATURES = * Produces clean filenames for uploads * Change admin footer text * Disable author page and author search by url * Disable emoji mess * Disable "meta widget" * Disable WP REST API public access * Disable "website" field from comment form * Disable wp embed * Disable xmlrpc.php * Show admin bar for admin users only * Hide WordPress update nag to all but admins * Remove "WordPress logo" from admin bar * Remove "+ New" button from admin bar * Remove some dashboard widgets * Remove query strings from scripts (JavaScript and CSS) * Remove <link rel="shortlink" > * Remove dashboard "welcome panel" * Remove WordPress version number in <head> * and more... **Note**: is possible disable any feature. = Contribuitions = For bugs, suggestions or contribuitions, open a issue in our [Github Repository](https://github.com/luizbills/wp-tweaks/issues) or create a topic in [WordPress Plugin Forum](https://wordpress.org/support/plugin/wp-tweaks/). = Donations = Support this plugin on [https://luizpb.com/donate/](https://luizpb.com/donate/) == Installation == 1. Install the plugin through the WordPress plugins screen directly. 1. Activate the plugin through the "Plugins" screen in WordPress. 1. Go to Settings > Tweaks to configure the plugin. == Changelog == = 2.2.0 - 2023-09-21 = - New security header: "Referrer-Policy" (value: `strict-origin-when-cross-origin`) - New security header: "Permissions-Policy" (value: `geolocation=(), microphone=(), camera=(), interest-cohort=()`) = 2.1.0 - 2023-09-19 = * Option to disable comments (only in pages and blog posts) * Option to hide annoying messages in admin panel * Warns when **WP_DEVELOPMENT_MODE** constant is activated = 2.0.0 - 2023-08-22 = * The plugin now requires PHP 7.4+ * Clear the plugin options when the plugin is uninstalled. * Option to display PHP version in admin footer * Option to disable or limit the Heartbeat API = 1.9.2 - 2023-01-18 = * Fix settings link. = 1.9.1 - 2023-01-11 = * Removed "Disallow your site in iframes" option. Utilize the "Security Headers" option instead. = 1.9.0 - 2023-01-10 = * Feature: Disable jQuery Migrate (enabled by default). * Feature: Security Headers (disabled by default). * Tweak: improve some options. = 1.8.0 - 2022-12-11 = * Security: Now is possible disallow to render your site in a ``, `